Description
Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.
Published: 2026-09-08
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Information disclosure
Action: Patch
AI Analysis

Impact

An integer overflow or wraparound bug in Microsoft Office Word enables an unauthorized attacker to read sensitive data from the process and send it over a network. The flaw can be triggered by crafted documents or inputs, allowing disclosure of confidential information in the memory of the Office process. This weakness is identified as a buffer under‑read (CWE‑125) and an integer overflow (CWE‑190). The impact is the exposure of data that the application or the underlying operating system protects, compromising confidentiality of the user’s documents and potentially internal network data.

Affected Systems

The issue affects multiple Microsoft Office families, including Microsoft 365 Apps for Enterprise, Office 2016, Office 2019, Office 2021, Office 2024, and their Mac variants such as Office 365 for Mac, Office LTSC 2021 and 2024 for Mac. The vulnerability is present in both x86 and x64 builds and applies to the 2016 Word application as well as newer Word versions bundled with these Office suites.

Risk and Exploitability

The CVSS score of 6.5 indicates a medium severity vulnerability. No EPSS score is available, so the likelihood of exploitation cannot be quantified, and the vulnerability is not listed in CISA’s KEV catalog, suggesting it is not widely exploited at present. The likely attack vector is a network‑based attack where an attacker supplies a malicious document or exploits a remote session. Given the moderate severity and lack of publicly known exploits, organizations should treat this as a legitimate risk but the chance of successful attack appears limited so far.

Generated by OpenCVE AI on September 9, 2026 at 00:58 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Microsoft Office security update for the affected versions as published in the Microsoft Security Update Guide.
  • Ensure that all Office applications across the enterprise are updated to the latest patched build within the next support cycle.
  • Restrict the opening of external documents and disable automatic attachment processing from untrusted network sources to reduce the risk of exploitation.

Generated by OpenCVE AI on September 9, 2026 at 00:58 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 10 Sep 2026 01:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft 365
Vendors & Products Microsoft 365

Tue, 08 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft microsoft 365
Microsoft word
CPEs cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:x64:*
cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:x86:*
cpe:2.3:a:microsoft:microsoft_365:-:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:office_2016:-:*:*:*:-:*:x64:*
cpe:2.3:a:microsoft:office_2016:-:*:*:*:-:*:x86:*
cpe:2.3:a:microsoft:office_2019:-:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:office_2019:-:*:*:*:*:*:x86:*
cpe:2.3:a:microsoft:office_2021:-:*:*:*:ltsc:-:x64:*
cpe:2.3:a:microsoft:office_2021:-:*:*:*:ltsc:-:x86:*
cpe:2.3:a:microsoft:office_2021:-:*:*:*:ltsc:macos:-:*
cpe:2.3:a:microsoft:office_2024:-:*:*:*:ltsc:-:x64:*
cpe:2.3:a:microsoft:office_2024:-:*:*:*:ltsc:-:x86:*
cpe:2.3:a:microsoft:office_2024:-:*:*:*:ltsc:macos:-:*
cpe:2.3:a:microsoft:word:2016:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:word:2016:*:*:*:*:*:x86:*
Vendors & Products Microsoft microsoft 365
Microsoft word

Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.
Title Microsoft Office Word Information Disclosure Vulnerability
First Time appeared Microsoft
Microsoft 365 Apps
Microsoft office 2016
Microsoft office 2019
Microsoft office 2021
Microsoft office 2024
Microsoft office 365
Microsoft office Macos 2021
Microsoft office Macos 2024
Microsoft word 2016
Weaknesses CWE-125
CWE-190
CPEs cpe:2.3:a:microsoft:365_apps:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:microsoft:office_2016:*:*:*:*:*:*:x86:*
cpe:2.3:a:microsoft:office_2019:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_2021:*:*:*:*:long_term_servicing_channel:*:*:*
cpe:2.3:a:microsoft:office_2024:*:*:*:*:long_term_servicing_channel:*:*:*
cpe:2.3:a:microsoft:office_365:*:*:*:*:*:macos:*:*
cpe:2.3:a:microsoft:office_macos_2021:*:*:*:*:*:long_term_servicing_channel:*:*
cpe:2.3:a:microsoft:office_macos_2024:*:*:*:*:*:long_term_servicing_channel:*:*
cpe:2.3:a:microsoft:word_2016:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft 365 Apps
Microsoft office 2016
Microsoft office 2019
Microsoft office 2021
Microsoft office 2024
Microsoft office 365
Microsoft office Macos 2021
Microsoft office Macos 2024
Microsoft word 2016
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C'}


Subscriptions

Microsoft 365 365 Apps Microsoft 365 Office 2016 Office 2019 Office 2021 Office 2024 Office 365 Office Macos 2021 Office Macos 2024 Word Word 2016
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:32:58.254Z

Reserved: 2026-08-03T22:40:09.684Z

Link: CVE-2026-69734

cve-icon Vulnrichment

Updated: 2026-09-08T20:22:33.189Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:19:45.660

Modified: 2026-09-17T20:17:48.483

Link: CVE-2026-69734

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-10T01:30:10Z

Weaknesses